Slashdot Mirror


Click Here To Infect Your PC!

Email me for FREE viruses writes "Just how many people would click an ad saying "Is your PC virus-free? Get it infected here!"? According to the security researcher who ran that very ad on Google for 6 months, 0.16% (409 of 259,723) would click on it. 98% of those people were running Windows. The Google Adwords campaign cost $23 in total, which works out to $0.06 per infection had the site actually been malicious."

43 of 215 comments (clear)

  1. How many slashdotters by Anonymous Coward · · Score: 5, Funny

    Then went and clicked on the link in the article? :P

    1. Re:How many slashdotters by Ceriel+Nosforit · · Score: 5, Funny

      You mean amongst the approximately 0.16% who actually RTFA? :o)

      --
      All rites reversed 2010
    2. Re:How many slashdotters by simm1701 · · Score: 4, Funny

      Yes but I did it from lynx, on a non priveliged account, on an AIX box - I'd like to have see the malware that would target that!!!

      I'm not paranoid!! They are out to get me!!

      --
      $_="Slashdotter";$syn="OTT";s;..;;;sub _{print shift||$_};s!ash!Perl !;s=$syn=ack=i;tr+LLEd+BLAH+;_"Just Another ";_
    3. Re:How many slashdotters by weighn · · Score: 3, Funny

      I'm not paranoid!! They are out to get me!! hmm, there's still scope for narrowing the attack surface. I'll snail-mail you a C64 port of Lynx and follow with a MD5 hash to your next door neighbor 2 weeks later ...
      --
      Mongrel News all the news that fits and froths
    4. Re:How many slashdotters by jstretch78 · · Score: 5, Funny

      "Click Here To Infect Your PC!" == "NAKED NAKED NAKED LADIES FREE BEER"

      Curiosity killed....wait free beer?

    5. Re:How many slashdotters by Yvanhoe · · Score: 4, Informative
      Arguably, you wouldn't want to use Internet Explorer for that. 80% of the visit to the site were made with IE. Here is a quote :

      Here is a breakdown: IE 5.5 1
      IE 6.0 286
      IE 7.0 48
      Safari (419.3) 1
      Opera 9.01 1
      Opera 9.10 1
      Firefox 1.0 7
      Firefox 1.5.0.7 9
      Firefox 1.5.0.8 2
      Firefox 1.5.0.9 3
      Firefox 2.0 3
      Firefox 2.0.0.1 6
      Firefox 2.0.0.2 1
      Firefox 2.0.0.3 21
      SeaMonkey 1.1 2
      AdsBot-Google 24

      Total 416
      --
      The Wise adapts himself to the world. The Fool adapts the world to himself. Therefore, all progress depends on the Fool.
    6. Re:How many slashdotters by GuldKalle · · Score: 5, Funny

      Well, there is a certain logic to it anyways. Normally when you click a pr0n-link, you get infected with a virus. So if you click a virus-link, you would expect to see porn.

      --
      What?
    7. Re:How many slashdotters by sticky_charris · · Score: 4, Funny

      Thats why real perverts run linux ;)

  2. It's hardly a surprise by Xiph · · Score: 4, Funny

    to tech professionals, that users need clue distributed by bat

    --
    Blah blah sig blah blah blah irony blah blah
    1. Re:It's hardly a surprise by the+unbeliever · · Score: 4, Funny

      Getting rid of most std's is easier than getting rid of some spyware/viruses...

      Consider your average spyware/virus akin to chlamydia or syph, while the really nasty stuff is more like aids/herpes...

      Granted, you can't reformat your body and get rid of it, but if you consider a reformat more along the lines of reincarnation...

    2. Re:It's hardly a surprise by Eivind · · Score: 4, Insightful
      The worst-case scenario are however very significantly different.

      Worst-case for a virus-infected windows-machine ? Complete reinstallation. A day lost, hell make it "toss away $1000 machine".

      Worst-case for std ? Death.

      Not really comparable.

  3. Sad... by Max+Romantschuk · · Score: 3, Funny

    The sad thing is that using something more enticing like "Free boobs this way" would send millions of clueless Joe Windowses your way... All ripe for the picking.

    --
    .: Max Romantschuk :: http://max.romantschuk.fi/
    1. Re:Sad... by Architect_sasyr · · Score: 4, Funny

      Which way did you say?

      --
      Me failed English...
      FreeBSD over Linux. If my comments seem odd, this may explain...
    2. Re:Sad... by ZOMFF · · Score: 5, Funny

      It's true. Free porn is a great way to get people to click on things they usually wouldn't click on. While I was in college about 8 years ago, I set up a porn share from my computer that was password protected. I also included a file called GET_PORN_PASSWORD.EXE which popped up a box with the password. The EXE also installed the client stub for Sub7 (a type of back-orafice program). Since Sub7 was fairly new, none of the antivirus software picked up on it. Over the next 24 hours I had pretty much 8,000 machines that I could fully remote, pull data off of, log key strokes, etc (my personal favorite was opening the cdrom drive and playing a "FEED ME" wave file).

      Luckily I was never questioned about the matter and by the time most people caught on, Antivirus definitions were updated to detect the Sub7 stub.

      --
      Launch every sig.
  4. 0,16% by JanneM · · Score: 5, Insightful

    At a click rate of 0,16% - about one in 600 - I have to wonder if not a fairly large portion is simple click errors. You intend to click on some other link nearby on the page but by mistake click that one instead. There's several kind of interaction slips just like that that we do in other circumstances after all.

    --
    Trust the Computer. The Computer is your friend.
    1. Re:0,16% by dour+power · · Score: 4, Insightful

      Even those who deliberately clicked on the link could have easily read the text as, "Get it inspected here!" Not an excuse, but certainly understandable. How many /. article postings contain at least one sincere reply of the form, "Am I the only one who read that as...?"

  5. Hmmm by gordgekko · · Score: 5, Insightful

    It's news that at least 0.16% of people are idiots? Actually I'm shocked the number was this low. This is actually good news.

    --
    You want to know who isn't running Firefox 2.x? They spell it "definately" and "rediculous".
    1. Re:Hmmm by julesh · · Score: 4, Insightful

      Consider that click through rates to a relevant ad are typically less than 3%. This represents 5% of people who would normally click on an advert.

  6. Not exactly. by SolitaryMan · · Score: 4, Insightful

    The Google Adwords campaign cost $23 in total, which works out to $0.06 per infection had the site actually been malicious."

    Not exactly.

    $0.06 per infection attempt, which is obviously not the same thing.

    --
    May Peace Prevail On Earth
  7. Underserved group by Nymz · · Score: 5, Interesting

    At a click rate of 0,16% - about one in 600 - I have to wonder if not a fairly large portion is simple click errors.

    At first I thought the same thing, just random misclicks. But then it hit me, there are a large number of users on the internet that don't have the know-how to install a virus on a computer of someone they hate, like an uppity coworker.

    Imagine a bussiness model that would allow anyone to simply 1-click and install a virus (not a feature, those are patentable). Revenue would be generated with advertisments downloaded by the trojan, that would popup at random times on the victims computer. In essence, the victim would have to pay for the service. Brilliant!
    1. Re:Underserved group by Gordonjcp · · Score: 3, Informative

      For the Debian users, it's easy: http://debianplanet.org/?from=405

  8. Re:0,16% Mac/Linux users by nyctopterus · · Score: 4, Insightful

    And of that tiny percentage how many were Windows users taking the fairly safe bet that the ad didn't do what it said?

  9. Browser stats by locofungus · · Score: 3, Interesting

    The comments give the browser stats:

    335 - some version of IE
    52 - Some version of Firefox
    5 - other

    That gives Firefox a 15% share.

    Tim.

    --
    God said, "div D = rho, div B = 0, curl E = -@B/@t, curl H = J + @D/@t," and there was light.
    1. Re:Browser stats by Torodung · · Score: 3, Insightful

      Pretty much reflects total market share almost 1:1. When 90% of the consumer market uses MS as their OS, is it terribly surprising that 85% of consumer *morons* use it?

      --
      Toro

    2. Re:Browser stats by ArsenneLupin · · Score: 3, Interesting

      Ha! I was going to suggest that firefox users are more "educated" and less likely to click on a link. It's not so simple. Their education allows them to know that they should not click on such a link in IE. But it also tells them to run Firefox. While running Firefox, especially on Linux, they would have no risk, and curiosity will win.

      It might be more interesting (but harder to obtain) a statistic broken down not only by the browser which user is currently using, but also by browser which they usually use. Here an "usual Firefox user currently stuck on IE" might be less likely to click on such a link. But such data can unfortunately not be obtained, short of asking user directly.

      Hmmm, and even in that case, the behavior might not be what would be expected. A "usual Firefox user currently stuck on IE" might still click on that link, in order to teach the party who stuck him on IE a lesson... Tricky, tricky...

      On the whole though I'd assume that there were the roughly same proportion of idiots in each camp Not necessarily. As shown above, both idiots and smart people might click on the link. But they would do so for different reasons.
    3. Re:Browser stats by NatasRevol · · Score: 3, Insightful

      Why should I have to work to protect my browser? Or my computer while just *going* to a web site.

      There's such a huge jump in logic there that it just befuddles me that 'configuring properly' is required to use the internet.

      No computer/browser is perfect, but it just makes basic sense to use a computer/browser that starts at a very secure state and allows you to open it up if you want/need. Rather than the other way around.

      <bad car analogy> It's like having to put rear view mirrors on your car after you buy it. </bad car analogy>

      --
      There are two types of people in the world: Those who crave closure
  10. Doesn't really mean much by gazbo · · Score: 5, Insightful

    Hell, if I saw that link I'd click on it for sure. Well, I might drop to Cygwin and use lynx "just in case", but there's no way I'd not investigate such a link.

  11. ONLY? by Opportunist · · Score: 3, Funny

    0.16%? I'd have guessed far more would click.

    Next time call it "hot chicks with huge tits want to give you some love virus". I predict a /. effect.

    --
    We used to have a Bill of Rights. Now, with the rights gone, all we have left is the bill.
  12. Why does it matter what OS they were using? by Torodung · · Score: 5, Insightful

    I once explained that browser security is almost entirely determined by the user. This proves it. I wouldn't trust that 0.16% with a pocket calculator, let alone a computer!

    You can't write code or design software that will secure "stupid." Firefox and Linux are certainly easier to secure, and they have a better security model, but they aren't idiot proof.

    If those folks were using an abacus, they'd probably get their head stuck in it! <G>

    --
    Toro

  13. Re:statistics by richlv · · Score: 3, Insightful

    i was reading that more as "no, that was not linux users clicking the link for fun". i mean, i would click on such a link ;)

    --
    Rich
  14. Huh? by julesh · · Score: 4, Interesting

    Last time I ran a Google Adwords campaign, they'd drop your advert if you get less than a threshold clickthrough rate. I think it was 0.5%. It was certainly higher than 0.16%. So how did they do this? Have Google dropped that restriction?

  15. For once I have an excuse... by JetScootr · · Score: 3, Funny

    for not RTFA'ing. Being a true /.er, here's my opinion anyway:
    Microsoft sucks. Users are idiots.

    --
    Pavlov wouldn't be so famous if he'd used a can opener instead of a bell.
  16. Re:Time for a crusade! by ronanbear · · Score: 4, Funny

    If you had a hardened system first then porn wouldn't be as useful.

    --
    the more they over-think the plumbing the easier it is to stop up the pipe
  17. Re:Oh dear. by nurb432 · · Score: 3, Insightful

    Or how many people thought ' it cant happen to me, as im protected ', but were still curious what the page was about.

    --
    ---- Booth was a patriot ----
  18. or cache pre-fetch by jamesh · · Score: 4, Interesting

    Would any aggressive cache pre-fetch engines follow links like this?

  19. Re:You pay all this money for AV software.. by seven7h · · Score: 5, Funny

    Looks like we have a member of the 0.16% here on /.
    $12.50 x 4 = $50

  20. click_me.exe by voudras · · Score: 4, Funny

    My good friend once joked that 95% of users would double click an icon named "ClickMe.EXE", without much thought at all.

    the other 5 percent would right click and select open.

  21. Badsense by Dogtanian · · Score: 4, Funny

    The sad thing is that using something more enticing like "Free boobs this way" would send millions of clueless Joe Windowses your way... I can see the advert now:-

    Free boobies for all!
    Cute booby chicks for your delectation! aff
    en.wikipedia.org
    --
    "Slashdot - News and Chat Sites Deviant". (Click "homepage" link above for details).
  22. Wait.... by ZeroSerenity · · Score: 3, Funny

    Was this story really submitted by Gates himself?

    --
    For those who seek perfection there can be no rest on this side of the grave.
  23. Re:0,16% Mac/Linux users by Zonk+(troll) · · Score: 3, Insightful

    Virus scanners create a false sense of security.

    <user> I have Norton. My computer is now immune to all viruses.
    (one week later)
    <user> I have a virus, can you fix it?

    I've seen people many times think that because they had Norton or McAfee, that they could do whatever they want without having to worry about getting a virus and act reckless. Open every attachment they get in email, downloading and running random .exes from "FREE!!!!!!!!!" sites, use Internet Explorer, etc.

    --
    "The Federal Reserve is a fraudulent system."--Lew Rockwell
    End The FED. -
  24. I worked with a guy... by httpamphibio.us · · Score: 5, Interesting

    He comes into work one day and you can tell by looking at him that he's pissed. He goes into the break room to get ready for the shift so I go back there and ask him what's wrong.

    He says, "I'm need a new ****ing computer."
    I ask why...
    "because the one I have now is too slow. I can't use the web because I get hundreds of popups."
    I tell him that's a pretty easy thing to fix and off to burn a CD and write up some directions for him.
    He tells me that won't work... again, I ask why.
    "Because I'm ****ing sick of Microsoft."
    I tell him I totally understand that, but that his problem with the pop-ups is pretty easy to fix.
    He says, "No, it's not. I click on all the Windows that ask me if I want to remove the viruses from my computer and they are always charging me $20-$40 per virus. I spent almost $400 last week!"

    Another computer savvy employee had joined the conversation by this point and we both looked at each other in complete disbelief. The guy wasn't joking...

    --
    sig.
  25. Re:Attempted Infection == Infection by ajs318 · · Score: 4, Insightful
    Yes, but if you didn't know what it was or whether it was safe, you wouldn't click it in your browser, would you? You'd use netcat. For example, if the link goes to http://somesite.someisp.cc/some/long/filename.ext? query_string then you'd need to do

    echo -e "GET /some/long/filename.ext?query_string HTTP/1.1\nHost: somesite.someisp.cc\n" | nc somesite.someisp.cc 80
    which will dump the raw HTTP response onto STDOUT. And that's safe because you can't muck anything up by printing to the screen (well, you might get unlucky and have some weirdy escape code sequence turn off echo or redefine the entire character set or beep incessantly; but the whole beauty of xterm windows is that you can always close one forcibly if you have to).

    And then, if and only if it looks safe, you can use wget http://somesite.someisp.cc/some/long/filename.ext to download it for investigation.
    --
    Je fume. Tu fumes. Nous fûmes!
  26. Re:Attempted Infection == Infection by ColdWetDog · · Score: 4, Funny

    Oh no, that's much too complex. I just click on the little blue "E". Works every time.

    --
    Faster! Faster! Faster would be better!